CVE-2023-21150

CVSS 3.1 Score 4.4 of 10 (medium)

Details

Published Jun 28, 2023
Updated: Jun 30, 2023
CWE ID 125

Summary

CVE-2023-21150 is a vulnerability affecting the Android kernel. In the function "handle_set_parameters_ctrl" within "hal_socket.c," an out-of-bounds read error occurs due to an incorrect bounds check. This issue can result in local information disclosure, and requires System execution privileges for exploitation. User interaction is not necessary for an attacker to take advantage of this vulnerability. (Note: This summary is based on the information provided and does not directly copy any sentences or phrases from the original text.)

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share